桌面上有一可疑的文件“message.elm"删除不了。下面是扫描报告:
2006-09-21,04:32:29
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows 2000 Professional Service Pack 4 (Build 2195)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><ctfmon.exe> [Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Zone Labs Client><"C:\Program Files\Zone Labs\Integrity Client\iclient.exe"> [Check Point Inc.]
<C4EBReg><"C:\progra~1\c4ebreg\c4ebreg.exe" /q> [IBM Global Services]
<Isamtray><"C:\progra~1\c4ebreg\isamtray.exe"> [IBM Global Services]
<ISSI EZUpdate Service><"c:\sdwork\issimsvc.exe"> [IBM Global Services]
<Synchronization Manager><mobsync.exe /logon> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><C:\WINNT\system32\userinit.exe,> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon]
<WinlogonNotify: NavLogon><C:\WINNT\system32\NavLogon.dll> [Symantec Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<AEIWLSTA.EXE><; AEIWLSTA.EXE> [Actiontec Electronics, Inc]
<AGRSMMSG><; AGRSMMSG.exe> [Agere Systems]
<C4EBReg><; "C:\progra~1\c4ebreg\c4ebreg.exe" /q> [IBM Global Services]
<ccApp><; "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"> [Symantec Corporation]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><; ctfmon.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<HotKeysCmds><; C:\WINNT\system32\hkcmd.exe> [Intel Corporation]
<IgfxTray><; C:\WINNT\system32\igfxtray.exe> [Intel Corporation]
<ISAMTray><; "C:\progra~1\c4ebreg\isamtray.exe"> [IBM Global Services]
<ISSI EZUpdate Service><; "c:\sdwork\issimsvc.exe"> [IBM Global Services]
<Mysee Alert><; "C:\Program Files\GAOV\Mysee Alert\Mysee Alert.exe" -notray> []
<NMGameX_AutoRun><; C:\WINNT\system32\Rundll32.exe NMGameX.dll,LiveProcess /aa> [NMGameX]
<qcsszjcz><; c:\chenhu2\chenqxms.exe> []
<Synchronization Manager><; mobsync.exe /logon> [Microsoft Corporation]
<SynTPEnh><; C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [Synaptics, Inc.]
<SynTPLpr><; C:\Program Files\Synaptics\SynTP\SynTPLpr.exe> [Synaptics, Inc.]
<TkBellExe><; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot> []
<TpShocks><; TpShocks.exe> [IBM Corp.]
<TrackPointSrv><; tp4serv.exe> [IBM Corporation]
<vptray><; C:\PROGRA~1\SYMANT~1\VPTray.exe> [Symantec Corporation]
<WangWang><; "d:\Program Files\淘宝网\淘宝旺旺\WangWang.EXE"> []
==================================
启动文件夹
服务
[Indexing Data / BNESS]
<C:\WINNT\SYSTEM32\RUNDLL32.EXE C:\WINNT\SYSTEM32\WBEM\IRJIT.DLL,Export 1087><N/A>
[Symantec Event Manager / ccEvtMgr]
<C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe><Symantec Corporation>
[Symantec Password Validation / ccPwdSvc]
<"C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"><Symantec Corporation>
[Symantec Settings Manager / ccSetMgr]
<C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe><Symantec Corporation>
[Symantec AntiVirus Definition Watcher / DefWatch]
<C:\Program Files\Symantec AntiVirus\DefWatch.exe><Symantec Corporation>
[Logical Disk Manager Administrative Service / dmadmin]
<C:\WINNT\System32\dmadmin.exe /com><VERITAS Software Corp.>
[IBM PM Service / IBMPMSVC]
<C:\WINNT\system32\ibmpmsvc.exe><N/A>
[IBM Standard Asset Manager Service / ISAMSvc]
<C:\progra~1\c4ebreg\c4ebreg.exe><IBM Global Services>
[ISSI EZUpdate / ISSIMon]
<c:\sdwork\issimsvc.exe><IBM Global Services>
[Pml Driver HPZ12 / Pml Driver HPZ12]
<C:\WINNT\system32\spool\DRIVERS\W32X86\3\HPZipm12.exe><HP>
[SavRoam / SavRoam]
<C:\Program Files\Symantec AntiVirus\SavRoam.exe><symantec>
[Symantec Network Drivers Service / SNDSrvc]
<C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe><Symantec Corporation>
[Symantec AntiVirus / Symantec AntiVirus]
<C:\Program Files\Symantec AntiVirus\Rtvscan.exe><Symantec Corporation>
[TrueVector Internet Monitor / vsmon]
<C:\WINNT\system32\ZoneLabs\vsmon.exe -service><Check Point Inc.>
==================================
浏览器加载项
[AcroIEHlprObj Class]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[LinkFilter Class]
{4022F902-ABC7-4C79-924F-BB26F1D355A2} <C:\WINNT\system32\diybar2\diybar2.dll, N/A>
[Google Toolbar Helper]
{AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, N/A>
[T2BHO Class]
{B1D147E7-873E-4909-8127-695D9BB78728} <C:\WINNT\Downloaded Program Files\CONFLICT.1\barhelp24.0.dll, HDT, Inc.>
[IEHlprObj Class]
{CE7C3CF0-4B15-11D1-ABED-709549C10000} <C:\WINNT\system32\IEHelper.dll, >
[QuickBtn]
{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7} <C:\Program Files\CoolWebsite\QuickLink.dll, N/A>
[bho Class]
{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270} <C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll, 深圳世强软件开发部>
[金山词霸]
{9A687CA6-D585-4947-9ED9-BE96071F5CD9} <C:\PROGRA~1\Kingsoft\POWERW~1\XDictExB.dll, N/A>
[@shdoclc.dll,-866]
{c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[@msdxmLC.dll,-1@2052,电台(&R)]
{8E718888-423F-11D2-876E-00A0C9082467} <C:\WINNT\System32\msdxm.ocx, Microsoft Corporation>
[&Google]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, N/A>
[虎翼DIY吧!]
{0A00D11E-B1E7-44b5-AD88-C9190876AAC4} <C:\WINNT\system32\diybar2\diybar2.dll, N/A>
[Edit Class]
{0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} <C:\WINNT\system32\CMBEdit.dll, >
[Installer Class]
{28E0FA88-ABA8-4937-A247-3031F1A11165} <C:\WINNT\system32\diybar2\diybar2.dll, N/A>
[CEditCtrl
Object]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINNT\system32\aliedit\AliEdit.dll, www.alipay.com>
[Downloader Class]
{5932517A-3326-4439-A708-1C98EDB5C549} <C:\WINNT\system32\iMopDl.dll, >
[photo_uploader Control]
{A984ED9F-E8DA-44E5-BC18-C14B9ABEF79D} <C:\WINNT\DOWNLO~1\PHOTO_~1.OCX, N/A>
[E&xport to Microsoft Excel]
<res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000, N/A>
[Google 搜索(&G)]
<res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html, N/A>
[反向链接]
<res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html, N/A>
[类似网页]
<res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html, N/A>
[缓存的网页快照]
<res://c:\program files\google\GoogleToolbar2.dll/cmcache.html, N/A>
[翻译英文字词(&T)]
<res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html, N/A>